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MEMORANDUM FOR DIRECTOR, COMMUNICATIONS -ELECTRONICS : 

SUBJECT: Replacement of the "Combined Cipher Machine" (COM). 

Reference: (a) JCS 2074 and 2074/1* 

1. The Director, armed Forces security Agency is in re- 
ceipt of a copy of JCS 2074/1, and has given preliminary con- 
sideration thereto. It is understood that this matter is now 
under consideration in JCEC and will be coordinated with AFSAC. 

2. The conference with the British Cryptographic experts 
was conducted by the Director, Armed Forces Security Agency and 
his experts. The present views of the Director, Armed Forces Se- 
curity Agency, together with other pertinent information, are set 
forth herein for possible assistance to the members of the JCEC 
and AF5AC in consideration of JCS 2074/1 and in preparing the re- 
quired answer to the British. 

3. The British assumption of a target date 5 years hence 
when we can and should have a new combined cipher machine seems 
valid. If necessary, in the event of an emergency before the com- 
pletion of a new combined cipher machine, the U.S. might furnish 
(in limited numbers) a suitable secure U.S. machine to the U.K. 
for US-UK "high command" communications, and possibly also to cer- 
tain Dominions, and perhaps to other allied countries, for the 
same type of communicat ions . The machine suggested by the British 
as the long-term solution (7-rotor BCK) is a current development 
project. The first model has not yet been completed. It would 

be advantageous to the U.S. not to name at this time the specific 
machine we would make available when such an emergency arises. To- 
day it might be a particular machine, and ten years hence a dif- 
ferent one. However, w© could — and I think we should — assure 
the British on this matter, in a general way. Ae agree with the 
British that a 7-rotor BCM should give adequate security for- high 
command US-UK communications. It will take considerable money to 
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produce it in quantity. The importance of secure US-UK communica- 



tions is such that an adequate cryptographic machine must always 
be available. I believe that, as at present, it should be dif- 
ferent from our own best machine for reasons stated hereinafter, 
and that it can be different with adequate security. 



4. The U.d. does not have under development a 7- r otor 

sCM; furthermore, there appears to be no need for undertaking such 
a development at this timei The wCM, especially the model 

i(CSP 2900)) with certain mod i fi cat ionsj^is regarded as satisfac- 
tory and secure for highest level communications. We also have a 
limited number of another (more complex) modified nCk (CSP 2J00) 
which is also regarded as secure for highest level communications. 



However, because of its complexity, it is not expected that there 
will be any further production of this machine . The CSP 2300 and 
2900 are basically the uorld Aar II type oCM plus improvements to 
enhance security. The improvements were logical developments ap- 
plied to the basic nCIR and should not, therefore, be considered 
to have resulted in creating new type machines. 



5. The British state that the 4 Cm (for Id War Ii version 
of the basic mCM) was disclosed to them in 1942. a limited num- 



ber of Britishers have seen it. They do not, however, have 
enough information to build a duplicate of our ^CM. The British 
probably could construct a machine resembling our ^Ch. It prob- 
ably would take them many years to do so, since our v-CM has been 
about 30 years in the making. In private conversation the Brit i 
admit they do not have an ROM blueprint. The &CI-1 is necessarily 
a complex machine, and some of the details could not be ascer- 



tained by merely seeing it in operation. The only improved machine 
for our own use that we can now be sure of having is the modified 



*CM. although we have some promising research and development 





REF 

AFSA-OO/wn 

a6 

Serial: 00040 



A2 436048 

DEPARTMENT OF DEFENSE 
ARMED FORCED .SECURITY AGENCY 
WASHINGTON 25, D.C. 



TOr SECRET U. S. EYES - 

TOP ..SECRET - u.g. eyed only 



12 December 1949 



SUBJECT: Replacement of the '’Combined Cipher Machine" (CCM) 



projects in the cryptographic field, it will, be several years more 
before we can expect to have a new U.S. cryptographic machine, 
based on different principles, and in sufficient quantity for 
regular U.S. use. 



6. The British assumption that theoretically they could 

solve any 5-rotor machine is based on having a set of the rotors 
and a 25 letter "crib 1 ’. Getting the rotors and crib might delay 
a start on such a solution indefinitely, and the result of each 
solution probably would be good for the traffic of but one day. 
Such an attack is theoretically possible, cut to apply it to the 
5 -rotor BCI-i would require considerable time and much machinery 
(even if the rotohs and crib are available). It would be an ex- 
tremely difficult and costly undertaking. A 7-rotor BCM’, if de- 
veloped, would probably preclude such an attack. Attack on the 
basic ECM would be even more difficult than on the 5-^otor BCM, 
but theoretically possible. It must be assumed that what men can 
make, other men should be able to take apart. Practically, the 
risk of solution is considered small in either case. 



7. I would especially invite attention to the Facts Bear- 

ing on the Problem as originally studied, and to the Discussion, 
in Enclosure ’’C" of JCS 2074. The content of that enclosure is 
still considered to be sound. 

B. The United Kingdom’s proposal to effect complete in- 

terchange of cryptographic principles on a reciprocal basis is 
still considered unacceptable. However, certain limited inter- 
change on the other aspects they now propose is considered desir- 
able on a conference basis, but not necessarily on a continuing 
basis. After the first such conference, with disclosure of such 
currently available developments by each side as are previously 
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agreed upon, consideration could be given to the matter of future 
conferences and possibly to future collaboration. 

9. We should inform the British that if they have or 
build a new cipher machine which they might care to disclose to 
the U.3. as a possible combined cipher machine, we would be 
pleased to consider it for such use in the future — either by 
our building an adaptor for one of our own cipher machines, or, 
if that should not be feasible, then by building or buying the 
number of machines required by the U.S. for US-UK communications. 

10. The U.S. should continue to develop a 7-rotor BCM and 
when^model is ready (expected within a few months), allow the U . K . 
to examine the principles of that machine. If both the U.S. and 
U.K. representatives agree that such a machine will be practical 
and adequately secure in use for twenty years after production, 
then agree to the adoption of the 7-rotor BCM for US-UK high com- 
mand communications as the replacement for the present combined 
cipher machine. 

11. The three proposals listed in paragraph 7 of Appendix 
to JCS 2074/1 are not feasible at this time. However, concern- 
ing the present CCM, paragraph 8 of Appendix to JCS 2074/1 is 
generally concurred in, since the CCM probably must be continued 
in use for several years for US-UK communications. The three 
steps proposed by the British to enhance the security of US-UK 
communications "with CCM are admittedly desirable, and some or all 
of them may be practicable and in that case probably should be 
adopted . 

12. For reasons briefly set forth below, the Director, 
Armed Forces security Agency believes that it should continue to. 
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be (J.S. policy not to give any foreign nation our most secure 
cryptographic machine, or the principles thereof, ouch action is 
not necessary to insure secure U3-UR comiriiUrilcations. The primary 
objections are as follows: : .f ;J 

a. Twenty or thirty years from now, the U.o. may still 
be depending upon the ECM (or a modified &CM) for 
security of its own communications . 
bi- From the political viewpoint '*■*« no one can foretell 
what kind of Government will be in control of any 
foreign country twenty or thirty years hence, or 
what our relations with such a country then will 
be. Of course, it is to be hoped and expected 
that they will be friendly in the case of the U.K. 
and the Dominions. 

c. Giving the SCM to any foreign country removes the 
sole Control and custody of that machine from the 

U.S. 

(1) We could not as readily apply modifications 
which we might consider essential for our own 
or for combined use* V... . 

(2) There are three important physical security 

aspects of any machine, add none of them should 
be ignored: namely, the basic machine, the 

rotors, and the key lists. V(e could not be 
sure that adequate physical security would be 
given to our basic machine to prevent loss or 
capture, even though our communications should 
be secure so long as the rotors and key lists 
are not compromised. ••• 



(3) We could not be sure that our machine would not 
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airplanes where we ©lie selves would not permit 
such machines to be, ,$aed: cpmbined " agpreetoent s 
to the contrary notwithstanding. 

(4) It probably will be essential to extend the use 
of any machine agreed upon for combined commun- 
ications to more than one allied foreign coun- 
try: e.g. , to Canada, Aultralia, or possibly 

even to the French, Dutch* etc. 

13. With the consideration 1 have been able to give this 
extremely important problem to date, my views as to an answer to 
the British are as follows: 

a. Agree that US-UK communications must continue . (prob 
ably for five years if no Emergency should develop 
In that period) to be by present CCK - bun made 
more, secure, if possible#! by use of new and addi- 
tional rotors and key lists and by minor material 
improvements — until a new combined cipher machine 
is available for US-UK and dominion use , 

b. Propose that the U.S. continue to develop a 7-rotor 
BCM as a probable replac.emefit; v f.or' the present CCM 
for combined use. Both U.S. and U.K. experts al- 
ready have agreed that such a machine should insure 
the necessary security for the next 20 years. The 
cost to the U.S, will be considerable but necessary 
This proposal, if agreed to, would have the one vi- 
tally important advantage pf r gaining the ECI*I (and 
such modified sCM as we may hereafter use for U.S. 
communications) exclusively for U.S, use, and assur- 
ance of sole U.S* control aftti lble U.S. physical 
custody. The decision about combined use should be 
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only after a 7-rotbr. BCM model has been ex> 

• amine d and approved by both U.3., and U.K* repre- 
sentatives. ; • • 

c. The U. 3;# should agree to make available to the 
British in an emergency, a secure cipher machine 
in .limited numbers to meet initial urgent combined 
U3-I|K needs. Although this conceivably might be 
the World War II version of. the ACM* it could be 
the S^rbtor BCNI, or some;. 5 jbth^„iaa chine then avail- 



able and sufficiently secure** It is considered - 
neither necessary nor wise to mention at this time 
the specific machine. We should reserve the right 
to make that decision if and when required, based 
upon the circumstances then existing. 

■ ■■ : 

/s/ EAH£:h|%TONii . ; , 

. REAR ADKBUL, IT. is. NAVY ' 

••• DIRECTOR, eRMAD FORCES SECURITY AGANCY 



Copy to: 

Members of .iFbAC 
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